A flaw was found in GLib. An integer overflow and buffer under-read occur when parsing a long invalid ISO 8601 timestamp with the g_date_time_new_from_iso8601() function.
                
            Metrics
Affected Vendors & Products
References
        History
                    Sat, 05 Jul 2025 10:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| CPEs | cpe:/o:redhat:enterprise_linux:10 | 
Mon, 14 Apr 2025 12:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| References |  | 
Wed, 09 Apr 2025 19:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | ssvc 
 | 
Mon, 07 Apr 2025 14:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| References |  | |
| Metrics | threat_severity 
 | threat_severity 
 | 
Mon, 07 Apr 2025 13:00:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | A flaw was found in GLib. An integer overflow and buffer under-read occur when parsing a long invalid ISO 8601 timestamp with the g_date_time_new_from_iso8601() function. | |
| Title | Glibc: glib prior to 2.82.5 is vulnerable to integer overflow and buffer under-read when parsing a very long invalid iso 8601 timestamp with g_date_time_new_from_iso8601(). | |
| First Time appeared | Redhat Redhat enterprise Linux | |
| Weaknesses | CWE-190 | |
| CPEs | cpe:/o:redhat:enterprise_linux:6 cpe:/o:redhat:enterprise_linux:7 cpe:/o:redhat:enterprise_linux:8 cpe:/o:redhat:enterprise_linux:9 | |
| Vendors & Products | Redhat Redhat enterprise Linux | |
| References |  | |
| Metrics | cvssV3_1 
 | 
 MITRE
                        MITRE
                    Status: PUBLISHED
Assigner: redhat
Published: 2025-04-07T12:53:55.924Z
Updated: 2025-07-29T14:22:11.859Z
Reserved: 2025-04-07T01:50:45.607Z
Link: CVE-2025-3360
 Vulnrichment
                        Vulnrichment
                    Updated: 2025-04-14T12:04:48.978Z
 NVD
                        NVD
                    Status : Awaiting Analysis
Published: 2025-04-07T13:15:43.687
Modified: 2025-04-14T12:15:16.087
Link: CVE-2025-3360
 Redhat
                        Redhat
                     ReportizFlow
ReportizFlow